Kol Tracker
Security checks across malware telemetry and agentic risk
Overview
This skill claims to provide real crypto wallet tracking and alerts, but the included code only prints fixed simulated data while still asking for Telegram and Etherscan credentials.
Review before installing. Treat this as a demo or placeholder, not a real crypto intelligence tool, and do not provide Telegram or Etherscan credentials or make financial decisions from its output unless the publisher updates the skill to clearly disclose simulated data or supplies reviewed code for scoped live wallet monitoring.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
